Latest CVE Feed
-
10.0
HIGHCVE-2007-6688
Unspecified vulnerability in the Installation application in Menalto Gallery before 2.2.4 has unknown impact and attack vectors related to "web-accessibility protection of the storage folder."... Read more
Affected Products : gallery- Published: Jan. 17, 2008
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2007-6691
Multiple unspecified vulnerabilities in Menalto Gallery before 2.2.4 have unknown impact, related to (1) "hotlink protection" in the URL rewrite module, (2) a WebDAV view in the WebDAV module, (3) a comment view in the Comment module, (4) unspecified "ite... Read more
Affected Products : gallery- Published: Jan. 17, 2008
- Modified: Apr. 09, 2025
-
10.0
CRITICALCVE-2025-20265
A vulnerability in the RADIUS subsystem implementation of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remote attacker to inject arbitrary shell commands that are executed by the device. This vulnerabilit... Read more
- Published: Aug. 14, 2025
- Modified: Aug. 16, 2025
- Vuln Type: Injection
-
10.0
HIGHCVE-2007-6757
GE Healthcare Centricity DMS 4.2, 4.1, and 4.0 has a password of Muse!Admin for the Museadmin user, which has unspecified impact and attack vectors. NOTE: it is not clear whether this password is default, hardcoded, or dependent on another system or prod... Read more
Affected Products : centricity_dms_firmware- Published: Aug. 04, 2015
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2007-6732
Multiple buffer overflows in the dtt_load function in loaders/dtt_load.c Extended Module Player (XMP) 2.5.1 and earlier allow remote attackers to execute arbitrary code via unspecified vectors related to an untrusted length value and the (1) pofs and (2) ... Read more
- Published: Sep. 13, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2011-3268
Buffer overflow in the crypt function in PHP before 5.3.7 allows context-dependent attackers to have an unspecified impact via a long salt argument, a different vulnerability than CVE-2011-2483.... Read more
Affected Products : php- Published: Aug. 25, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2011-3122
Unspecified vulnerability in WordPress 3.1 before 3.1.3 and 3.2 before Beta 2 has unknown impact and attack vectors related to "Media security."... Read more
Affected Products : wordpress- Published: Aug. 10, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2011-3106
The WebSockets implementation in Google Chrome before 19.0.1084.52 does not properly handle use of SSL, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors.... Read more
Affected Products : chrome- Published: May. 24, 2012
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2011-3003
Mozilla Firefox before 7.0 and SeaMonkey before 2.4 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via an unspecified WebGL test case that triggers a memory-allocation error and a resulting out-o... Read more
- Published: Sep. 29, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2011-2997
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 6, Thunderbird before 7.0, and SeaMonkey before 2.4 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary c... Read more
- Published: Sep. 29, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2011-2992
The Ogg reader in the browser engine in Mozilla Firefox 4.x through 5, SeaMonkey 2.x before 2.3, Thunderbird before 6, and possibly other products allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly e... Read more
- Published: Aug. 18, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2019-18780
An arbitrary command injection vulnerability in the Cluster Server component of Veritas InfoScale allows an unauthenticated remote attacker to execute arbitrary commands as root or administrator. These Veritas products are affected: Access 7.4.2 and earli... Read more
Affected Products : linux_kernel windows infoscale access access_appliance flex_appliance cluster_server storage_foundation_ha- Published: Nov. 05, 2019
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2013-2344
Unspecified vulnerability in HP Storage Data Protector 6.2X allows remote attackers to execute arbitrary code or cause a denial of service via unknown vectors, aka ZDI-CAN-1866.... Read more
Affected Products : storage_data_protector- Published: Jan. 04, 2014
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2011-2450
Adobe Flash Player before 10.3.183.11 and 11.x before 11.1.102.55 on Windows, Mac OS X, Linux, and Solaris and before 11.1.102.59 on Android, and Adobe AIR before 3.1.0.4880, allows attackers to execute arbitrary code or cause a denial of service (heap me... Read more
- Published: Nov. 11, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2019-18666
An issue was discovered on D-Link DAP-1360 revision F devices. Remote attackers can start a telnet service without authorization via an undocumented HTTP request. Although this is the primary vulnerability, the impact depends on the firmware version. Vers... Read more
- Published: May. 15, 2020
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2011-2420
Adobe Shockwave Player before 11.6.1.629 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors.... Read more
Affected Products : shockwave_player- Published: Aug. 11, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2011-2419
IML32.dll in Adobe Shockwave Player before 11.6.1.629 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors.... Read more
Affected Products : shockwave_player- Published: Aug. 11, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2011-2376
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.6.18 and Thunderbird before 3.1.11 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via ... Read more
- Published: Jun. 30, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2011-2136
Integer overflow in Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary ... Read more
- Published: Aug. 10, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2011-1865
Multiple stack-based buffer overflows in the inet service in HP OpenView Storage Data Protector 6.00 through 6.20 allow remote attackers to execute arbitrary code via a request containing crafted parameters.... Read more
Affected Products : openview_storage_data_protector- Published: Jul. 01, 2011
- Modified: Apr. 11, 2025